diff --git a/config/arm64/default b/config/arm64/default index cc364bc..3ef262f 100644 --- a/config/arm64/default +++ b/config/arm64/default @@ -12221,7 +12221,7 @@ CONFIG_IMA_DEFAULT_HASH="sha256" # CONFIG_IMA_WRITE_POLICY is not set CONFIG_IMA_READ_POLICY=y CONFIG_IMA_APPRAISE=y -# CONFIG_IMA_ARCH_POLICY is not set +CONFIG_IMA_ARCH_POLICY=y # CONFIG_IMA_APPRAISE_BUILD_POLICY is not set CONFIG_IMA_APPRAISE_BOOTPARAM=y CONFIG_IMA_APPRAISE_MODSIG=y @@ -12231,7 +12231,7 @@ CONFIG_IMA_TRUSTED_KEYRING=y # CONFIG_IMA_LOAD_X509 is not set CONFIG_IMA_MEASURE_ASYMMETRIC_KEYS=y CONFIG_IMA_QUEUE_EARLY_BOOT_KEYS=y -# CONFIG_IMA_SECURE_AND_OR_TRUSTED_BOOT is not set +CONFIG_IMA_SECURE_AND_OR_TRUSTED_BOOT=y # CONFIG_IMA_DISABLE_HTABLE is not set CONFIG_EVM=y CONFIG_EVM_ATTR_FSUUID=y diff --git a/config/i386/default b/config/i386/default index 040a427..272cce7 100644 --- a/config/i386/default +++ b/config/i386/default @@ -31,6 +31,8 @@ CONFIG_HWMON=m CONFIG_HWPOISON_INJECT=m CONFIG_I2C_PCA_ISA=m CONFIG_I82365=m +CONFIG_IMA_ARCH_POLICY=y +CONFIG_IMA_SECURE_AND_OR_TRUSTED_BOOT=y CONFIG_ISA=y CONFIG_ISAPNP=y CONFIG_LANCE=m diff --git a/config/x86_64/default b/config/x86_64/default index 8c5a492..3868056 100644 --- a/config/x86_64/default +++ b/config/x86_64/default @@ -10343,7 +10343,7 @@ CONFIG_IMA_DEFAULT_HASH="sha256" # CONFIG_IMA_WRITE_POLICY is not set CONFIG_IMA_READ_POLICY=y CONFIG_IMA_APPRAISE=y -# CONFIG_IMA_ARCH_POLICY is not set +CONFIG_IMA_ARCH_POLICY=y # CONFIG_IMA_APPRAISE_BUILD_POLICY is not set CONFIG_IMA_APPRAISE_BOOTPARAM=y CONFIG_IMA_APPRAISE_MODSIG=y @@ -10353,7 +10353,7 @@ CONFIG_IMA_TRUSTED_KEYRING=y # CONFIG_IMA_LOAD_X509 is not set CONFIG_IMA_MEASURE_ASYMMETRIC_KEYS=y CONFIG_IMA_QUEUE_EARLY_BOOT_KEYS=y -# CONFIG_IMA_SECURE_AND_OR_TRUSTED_BOOT is not set +CONFIG_IMA_SECURE_AND_OR_TRUSTED_BOOT=y # CONFIG_IMA_DISABLE_HTABLE is not set CONFIG_EVM=y CONFIG_EVM_ATTR_FSUUID=y